Skip to main content

NAT Gateway EIP Usage Check

ID: rule:aliyun:natgateway-eip-used-check
Severity: medium

Description

SNAT and DNAT should not use the same EIP to avoid potential conflicts and improve network segmentation.

Reason for Violation

Using the same EIP for both SNAT and DNAT can lead to routing conflicts and security issues.

Recommendation

Configure different EIPs for SNAT and DNAT entries.

Resource Types

  • ALIYUN::NAT::NatGateway